SOX Identity and Access Management Governance Strategist
Truist Inc
The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.
Need Help? (
If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (View email address on click.appcast.io?subject=Accommodation%20request)
(accommodation requests only; other inquiries won't receive a response).
Regular or Temporary:
Regular
Language Fluency: English (Required)
Work Shift:
1st shift (United States of America)
Please review the following job description:
This role is positioned within the Technology, Data & Operations (TD&O) SOX Governance Team and serves as an ITGC subject matter expert, specifically concentrated on Identity & Access Management (IAM) and other logical security–related SOX controls.
The primary objective is to ensure TD&O fulfills its responsibilities under SOX Sections 404 and 302 and FDICIA, acting as the connective layer between:
• TD&O internal technology teams
• SOX Program Management, including internal SOX auditors
• External SOX auditors
This makes the role a blend of IT risk governance, audit liaison, and control oversight—requiring both technical fluency and strong governance/reporting abilities.
Key Responsibilities
- ITGC Risk & Control Expertise (Logical Security Focus)
You are expected to:
• Understand and apply IT general controls, particularly in areas such as provisioning, de-provisioning, access reviews, privileged access, authentication methods, and system access governance.
• Evaluate emerging risks, control failures, and design opportunities.
This reinforces the need for:
• Strong foundational ITGC knowledge
• Understanding of IAM technologies (e.g., SailPoint, Active Directory, PAM tools)
• Ability to identify control gaps or deficiencies
- Issue Resolution & Analytical Problem-Solving
You’ll address issues affecting both:
• SOX compliance
• Underlying technology processes
This means:
• Translating technical problems into SOX impact assessments
• Recommending feasible, risk-based remediation strategies
• Supporting control owners in designing sustainable control improvements
• This is where IT risk expertise intersects with practical engineering or operational realities.
- Governance Routines & Reporting
You’ll contribute to—or own—routine SOX reporting cycles, including:
• Executive-level updates
• Committee reporting
• Escalation of emerging or systemic risks
This requires:
• Strong communication skills
• Ability to convert technical details into concise, risk-focused reporting
• Comfort interfacing with senior leadership
- Auditor Coordination & Request Management
You’ll be a point person within TD&O who:
• Coordinates with internal/external auditors on ITGC walkthroughs
• Manages evidence requests
• Clarifies process or control questions
• Helps drive consistent messaging across technology teams
This calls for:
• Understanding what auditors expect
• Ability to anticipate questions or areas of scrutiny
• Keeping TD&O aligned with SPM and audit expectations
- SOX Issue Management & Remediation Tracking
You will partner with multiple groups to:
• Document issues/deficiencies
• Develop remediation plans
• Track progress and ensure timely closure
This requires:
• Structured project management
• Clear understanding of deficiency severity and impact
• Skill in influencing teams toward timely resolution
- Organizational & Project Management Skills
The role requires coordination across:
• Technology process owners
• Risk partners
• Audit stakeholders
• Executive reporting channels
This implies:
• Ability to manage multiple competing priorities
• Strong documentation discipline
• Effective communication across technical and non technical stakeholders
- Technology Partner Collaboration
You will provide SOX and IT risk perspective when:
• New technology initiatives launch
• System changes are made
• IAM or security processes are redesigned
This ensures SOX requirements are built into design—not retrofitted later.
For this opportunity, Truist will not sponsor an applicant for work visa status or employment authorization, nor will we offer any immigration-related support for this position (including, but not limited to H-1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN-1 or TN-2, E-3, O-1, or future sponsorship for U.S. lawful permanent residence status.)
This position is office-centric 5 days a week in either our Atlanta or Charlotte/Cascade hub.
Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
Provide coordination, effective challenge and robust independent oversight of policies, limits, and committees to drive effective governance structures and requirements to effectively manage and mitigate risks within assigned business units and support alignment with the overall corporate strategy.
Provide consultative leadership and develop working relationships across assigned business units and committees to drive the implementation and execution of a multi-level governance document structure and comprehensive inventory for all defined governance materials.
Support and contribute to the design, implementation, and execution of comprehensive, forward-looking and risk-based frameworks, processes, and systems for prioritizing, structuring, reviewing and approving governance materials throughout the company.
Support the monitoring and execution of risk governance policies and procedures to establish defined processes, clear roles and responsibilities, and effective challenge routines.
Identify and monitor risk governance exceptions, issues, and emerging trends across assigned business units and committees to drive their remediation, acceptance, or escalation to governing bodies.
Document the governance and reporting program including methodologies, processes and procedures, report writing, conventions for consistently vetting and documenting findings and working papers.
Lead the Development and maintenance of processes and procedures to ensure the accuracy of the reports produced by the team.
Evaluate control weakness or key indicators exceeding risk limits and perform root cause analysis.
Build a working knowledge of the business units strategic plan, key objectives, risk appetite statement, and RSCA process to understand the risks identified and controls applied to mitigate them in order to execute ad hoc risk management initiatives and controls testing.
Assist in the detection of emerging and/or under recognized risks.
Conduct data aggregation to support risk appetite framework and quarterly profile, including KRI's and ongoing risk identification.
Assist business leaders in development of RAF metrics and thresholds.
Generate content for regular management and risk program governance committees.
Facilitate Risk Committee and other risk committee/working groups.
Demonstrate Truist’s risk culture.
Qualifications
Required Qualifications:
The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Bachelor’s degree in Business, Finance, Communications or equivalent education and related training.
Eight to twelve years of financial services or risk management experience, and/or equivalent education, training and experience.
Strong interpersonal and relationship management skills with ability to interact and communicate within all levels of organization, across functions, and within public sector/governmental agencies.
Strong analytical, cognitive, conceptual, critical thinking and organizational skills.
Demonstrated leadership, communication (verbal and written), presentation and facilitation skills.
Demonstrated planning ability with demonstrated judgment, problem-solving and decision-making skills.
Demonstrated proficiency in basic computer applications, such as Microsoft Office software products.
Preferred Qualifications:
Seven plus years of experience auditing SOX 404 / 302 ITGC controls, particularly within logical security and Identity & Access Management (IAM).
Working knowledge of IAM concepts such as provisioning, de‑provisioning, role-based access, privileged access management (PAM), authentication/authorization mechanisms, and access review processes.
Hands-on or oversight experience with IAM platforms (e.g., SailPoint, Active Directory / Azure AD, CyberArk, etc.).
Experience supporting or executing ITGC walkthroughs, control testing, or evaluating IT control deficiencies.
Familiarity with SOC 1 / SOC 2 reporting and related control environments.
General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site (
. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.
Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.
EEO is the Law (
E-Verify (
IER Right to Work (
- ...This role is positioned within the Technology, Data & Operations (TD&O) SOX Governance Team and serves as an ITGC subject matter expert, specifically concentrated on Identity & Access Management (IAM) and other logical security–related SOX controls. The primary objective...SuggestedWork at office
- As an ITGC subject matter expert within the Technology, Data & Operations (TD&O) SOX Governance Team, you will focus on Identity & Access Management (IAM) and logical security‑related SOX controls. This is an office‑centric role, 5 days a week, located in Atlanta or Charlotte...SuggestedWork at officeVisa sponsorshipFree visa
- ...accommodation. Send an email to Accessibility (****@*****.***?subject=... ...Information Security Management, external vendors, and internal... ...# Strong knowledge of cyber governance terms, disciplines and... ...sexual orientation, gender identity, disability, veteran status,...SuggestedFull timePart timeWork at officeShift workDay shift
$72.56k - $157.95k
...divh2Compensation Strategist/h2pIAT Insurance Group has an immediate opening for a Compensation... ..../ppThis role plays a key part in managing and enhancing the organizations compensation... ..., sex, sexual orientation, gender identity, national origin, disability, or status...SuggestedImmediate startRemote work- ...divh2Learning Strategist/h2pOur client is expanding its Learning Strategy function as the... ...solutions, and provides total account management. The ideal candidate is AI-forward, highly... ...pregnancy), sexual orientation, gender identity and expression, marital status,...Suggested
- 慨正橡扯 is seeking a Senior Product Associate for Wealth Management Product to drive product development and optimization. The role requires expertise in user research and collaboration with cross-functional teams to identify new opportunities and improve existing offerings...
$115.2k - $158.4k
...'s behavioral health network quality and access across both Medicare Advantage (MA) and Medicaid... ...Measurement: Develop, implement, and manage provider scorecards and tiering systems... ..., sex, sexual orientation, gender identity, national origin, age, marital status, genetic...Full timeTemporary workFor contractorsApprenticeshipRemote workWork from homeHome office$79.3k
...clinical side of the business. As part of the Customer Relationship Management (CRM) team, this individual will contribute to developing a... ...As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential...For contractorsWork at officeLocal areaRemote work3 days per week- Itlearn360 is searching for a Senior Public Relations Associate based in Raleigh, NC to develop public relations strategies and manage media relationships. The role requires at least three years of experience in public relations and knowledge of the transportation industry...Work at office
$99k - $114k
A global technology company is seeking a Senior Specialist in Global Payroll & Equity to manage payroll processes for multiple countries. The ideal candidate will have over 8 years of payroll experience, extensive knowledge of payroll laws, and strong communication skills...- ...M&A Strategy & Governance Consultant Strategy, Growth, and Transformation | Enterprise Strategy and Growth Available in multiple locations including: Atlanta, Georgia, United States Austin, Texas, United States Boston, Massachusetts, United States Charlotte...
- A leading biopharmaceutical solutions organization is seeking a Medical Strategist (VP) focused on Neuroscience. This role leads medical and scientific contributions across clinical development programs, ensuring strategic alignment and operational excellence. The Medical...
- Medical Strategist (VP) - Neuroscience Updated: December 11, 2025 Location: Morrisville, NC, United States Job ID: 25101616 Syneos Health... ...development and progression; supportive and engaged line management; technical and therapeutic area training; peer recognition and...Contract workFlexible hours
- ...understands where it’s going next. This role is built for a strategist who sees organic visibility as bigger than blue links and... ...click behavior, entity-based search) ~ Experience creating or managing high-performing content programs ~ Familiarity with structured...Part timeWork from homeMonday to FridayFlexible hoursShift work
$70.35k - $205.8k
...world's leading businesses, governments and other organizations build... ...Case Development, Data Management, Data Analysis, Data Management... ...sexual orientation, gender identity or expression, genetic information... ..., employees who have access to the compensation information...Live inWork at officeLocal area£28k - £35k per year
Central Employment Agency (North East) Ltd. is looking for an SEO Strategist to develop and manage SEO strategies for diverse client accounts. This role emphasizes working closely with digital teams to enhance a client's online presence through technical SEO, content optimisation...Work at office- Summary The Senior Digital Strategist is a senior consulting role within Celebrus Professional Services, responsible... ...industries, including FCA/PRA, HIPAA, GDPR, PCI, and consent management. Conversant with tagging, identity resolution, event capture, and data architecture —...
- Sokal, located in Raleigh, NC, is looking for a Programmatic Advertising Specialist. The role involves managing and optimizing programmatic advertising campaigns, ensuring high technical accuracy and delivering measurable results. Candidates should have a strong understanding...
$100k - $160k
A leading technology solutions provider in Raleigh is seeking a Security Solutions Advisor to generate and drive security business growth. This position requires a Bachelor's Degree, along with over 3 years of sales experience, including 2 years in direct security sales...- A leading healthcare innovator is seeking a Senior Thought Leader Liaison for its Lung division, based preferably in Raleigh, NC. The role involves leading KOL engagement and marketing strategies in the Atlanta Region, including North Carolina. Candidates should have at...
- ...Remote Healthcare Account Strategist Embark on Your Journey as a Remote Account Strategist Collaborating with a Renowned Team of Healthcare... ...differs from traditional recruiting roles; instead of managing hiring processes or handling repetitive tasks, you will serve...Remote jobWork from home
- ...Paid Media Strategist - Remote Alliance Animal Health is a fast-growing network of veterinary practices across the U.S. We support... ...experienced in Google Ads: 3-5 years of hands-on experience directly managing search, Pmax, LSA, and demand gen campaigns while successfully...Remote job
- ...Paid Social Strategist TriMark Digital is looking for a curious, data-driven, and creative Paid Social Strategist to join our performance... ...is for you. Roles And Responsibilities Plan, build, and manage paid social campaigns across platforms like Meta (Facebook &...Immediate start
- A leading industrial consulting firm seeks an EHS Consultant to lead safety initiatives on-site in Raleigh. You will ensure compliance with HSE regulations and foster a strong safety culture among teams. The ideal candidate has 5-10 years of relevant experience, outstanding...
- ...About the Role We’re looking for a curious, collaborative SEO strategist who enjoys solving problems, experimenting with new tools, and... ...opportunity to make an impact. What You’ll Do Lead and Manage SEO Campaigns Plan and implement SEO strategies across different...Full timePart timeCasual workMonday to FridayFlexible hours
$114k - $210.9k
A leading life sciences organization is seeking a Principal Publication Strategist in Morrisville, NC. The role involves leading scientific disclosure and publication strategies, working closely with Medical Affairs and Clinical Development teams. The ideal candidate will...Flexible hours$114k - $210.9k
Principal Publication Strategist, Medical Writing Updated: April 11, 2026 Location: Morrisville, NC, United States Job ID: 25102046-OTHLOC... ...development and progression; supportive and engaged line management; technical and therapeutic area training; peer recognition and...Contract workFlexible hours- Lenovo is seeking an HPC and AI Sales Specialist to drive sales across strategic industries in North America. This remote role focuses on building strong customer relationships, developing new business opportunities, and delivering innovative HPC and AI solutions. The ideal...Remote job
- ...Job Description Job Description Salary: SEO / GEO / AEO Strategist Were looking for a search strategist who understands that... ...click behavior, entity-based search) Experience creating or managing high-performing content programs Familiarity with...
- ...automation, and the evolving role of AI in search. As our SEO Strategist , you'll lead performance across multiple client accounts while... ...closely with developers and designers. Implement and manage schema types that enhance AI and SERP visibility. Additional...Part timeCasual workMonday to FridayFlexible hoursShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SOX Identity and Access Management Governance Strategist. Be the first to apply!
- technology strategist Raleigh, NC
- business strategist Raleigh, NC
- communications strategist Raleigh, NC
- senior strategy consultant Raleigh, NC
- design strategist Raleigh, NC
- investment strategist Raleigh, NC
- strategist Raleigh, NC
- digital strategist Raleigh, NC
- senior brand strategist Raleigh, NC
- media strategist Raleigh, NC


